Access control models for cloud computing

MA Qiang,AI Zhong-Liang
DOI: https://doi.org/10.3969/j.issn.1000-7024.2012.12.014
2012-01-01
Abstract:In order to solve the security problems of operation and management in IaaS(Infrastructure as a Service),a access control mechanism is designed based on the traditional access control model and the features of IaaS.Firstly,the secure features of cloud computing and the inadequacies of existing programs are analyzed,It is pointed out the security of IaaS is the basis for the security of cloud computing.Then,according to four design principles,the CIRBAC model and the CITE model are designed,which can be used in the infrastructure layer of cloud computing based on the RBAC model and the TE model,and the modules of the models is designed in detail.Finally,the models are achieved at the openstack environment with Xen-based virtualization layer.The model enhances the security of IaaS.
What problem does this paper attempt to address?